Write-ups

Check The Published Writeups

WDBTitleTagsProgramsAuthorsTypePublicationAdded
2411Credential stuffing in Bug bounty hunting Credential stuffing NA Valeriy Shevchenko (@Krevetk0Valeriy) Bug Bounty2021-07-142023-06-13
2410How I found Blind SQL Injection just by browsing and getting a unique URL SQL injection NA Jawad Mahdi (@hunter0x1) Bug Bounty2021-07-142023-06-13
2409Stored XSS in Google Doubleclick Studio [Google Research Grant] Stored XSS Google Jasminder Pal Singh (@Singh_Jasminder) Bug Bounty2021-07-142023-06-13
2408RFD Vulnerability And Content-Disposition Header Bypass Story! Reflected File Download NA Kabilan S (@kabilan1290) Bug Bounty2021-07-142023-06-13
2407How i was able to bypass Cloudflare for XSS! XSS NA hosein vita (@HoseinVita) Bug Bounty2021-07-162023-06-13
2406Logical Flaw Resulting Path Hijacking Namespace attack NA Veshraj Ghimire (@GhimireVeshraj) Bug Bounty2021-07-162023-06-13
2405Remote code execution in cdnjs of Cloudflare RCE Path traversal Cloudflare RyotaK (@ryotkak) Bug Bounty2021-07-162023-06-13
2404IIS-Default-Page-to-Information-Disclosure Information disclosure NA 0xdln (@0xdln) Bug Bounty2021-07-172023-06-13
2403RCE via WebDav - Power Of PUT Default credentials RCE NA Jerry Shah (@Jerry) Bug Bounty2021-07-182023-06-13
2402Account Takeover + A Bonus Vulnerability Account takeover Session fixation NA Vikash Maurya Bug Bounty2021-07-182023-06-13
2401Facebook Vulnerability: $1500 for Removing Document Cover Authorization flaw IDOR Meta / Facebook Muhammad Sholikhin (@MuhammadLikhin) Bug Bounty2021-07-182023-06-13
2400How I Bypassed a tough WAF to steal user cookies using XSS! XSS WAF bypass NA Asem Eleraky (@melotover) Bug Bounty2021-07-192023-06-13
2399Hacking Xiaomi%27S Android Apps - Part 1 Android Information disclosure Open redirect Privacy issue Xiaomi Ameya (@iamTakeMyHand) Bug Bounty2021-07-192023-06-13
2398IBM HMC Exploit CVE-2021-29707 Local Privilege Escalation IBM Thomas Cope Bug Bounty2020-10-212023-06-13
2397How I was able Find mass leaked AWS s3 bucket from js File AWS misconfiguration NA Santosh Kumar Sha (@killmongar1996) Bug Bounty2021-07-202023-06-13
2396XSS-Through-Fuzzing-Default-IIS Reflected XSS NA 0xdln (@0xdln) Bug Bounty2021-07-202023-06-13
2395Guest Blog Post - Attacking the DevTools Browser hacking Microsoft David Erceg (@david_erceg) Bug Bounty2021-07-212023-06-13
2394Escalating Self-XSS To Stored XSS via Image injection + IDOR Self-XSS Stored XSS IDOR NA Demon (@R29k_) Bug Bounty2021-07-212023-06-13
2393Unauthenticated Access To MongoDB Database of Oracle Corporation Missing authentication Exposed administrative interface Oracle Pratikkhalane (@KhalanePratik) Bug Bounty2021-07-222023-06-13
2392Pre-Account Takeover by Reversing a Weak Email Verification Token Algorithm Weak crypto NA Craig Hays (@craighays) Bug Bounty2021-07-222023-06-13
2391FragAttacks Wifi Internet Bug Bounty Mathy Vanhoef (@vanhoefm) Bug Bounty2021-07-232023-06-13
2390Story OF MY 3RD Bounty From Facebook Logic flaw NA Aashish Jung Kunwar (@WhoisAasis) Bug Bounty2021-07-232023-06-13
2389How I Found Multiple Bugs On FaceBook In 1 Month And a Part For My Methodology & Tools SSTI SQL injection Authentication bypass Privilege escalation Reflected XSS Meta / Facebook Orwa Atyat (@GodfatherOrwa) Bug Bounty2021-07-232023-06-13
2388eBay XSS demo and guide to spear phishing XSS Ebay MLT (@0dayWizard) Bug Bounty2021-07-252023-06-13
2387Not valid bug that leads to us a multiple Valid Report in Facebook Information disclosure Meta / Facebook Kent Jarold Abulag (@wkemenhehehegsg) Bug Bounty2021-07-252023-06-13